Written by antti on {{ "2018-08-24T08:43:55+00:00" | date "longDate" }}

In this article are shown example instructions for a simple firewall disallowing new connections if the remote host initiates a connection too often. This is especially the case with SSH bruteforce attacks. This article describes deploying netfilter firewall IPv4 address bans on demand to protect a host using iptables recent match and ipset tools.